Discover
Full inventory of mailboxes, sizes, public folders, permissions, mail flow rules and every system that relays through the server.
Exchange
Running your own Exchange server in 2026 means owning an internet-facing service that attackers scan for constantly. We support existing on-premises Exchange while it lasts, and we move businesses to Exchange Online with a cutover plan that accounts for public folders, mail flow rules and every connected device.
The Case
For years, running your own Exchange server was a defensible choice. That changed. Exchange has been the subject of repeated critical vulnerabilities exploited at scale within days of disclosure, and an unpatched server reachable from the internet is one of the most reliably compromised assets in small business IT.
The maintenance burden is the other half. Cumulative updates that must be applied in sequence, certificates that expire and take mail flow down with them, database growth and log truncation, backup that has to be application-aware, and a service where every problem is company-wide by definition. For a business with thirty mailboxes, that is a lot of specialist attention for something Microsoft will run for a few dollars per user.
A good migration is mostly discovery. We inventory every mailbox including the ones nobody uses, measure sizes, catalog public folders and who actually opens them, find every shared and resource mailbox, and list every system that sends mail through the server, the copier, the accounting package, the alarm monitoring, the line-of-business application with SMTP settings entered in 2017 by someone who has left.
That last category causes most post-migration incidents. Mail simply stops arriving from a system nobody remembered, usually a week later when somebody notices the statements never went out. We find those before cutover by watching what actually connects to the server.
For small mailbox counts, a cutover migration is often simplest: move everything in one weekend, change DNS, reconfigure clients. For larger environments or where coexistence is needed, hybrid lets on-premises and cloud mailboxes work together with shared calendars and a single address list while you migrate in batches. Hybrid adds complexity but removes the big-bang risk, and we choose based on size and tolerance rather than habit.
Public folders are the classic complication. They are usually old, often huge, and frequently contain data nobody has opened in years alongside a handful of items that are business critical. We audit usage, migrate what matters to shared mailboxes or SharePoint where that fits better, and move genuine public folder content properly rather than dragging a decade of unused hierarchy into the cloud.
Mail flow rules, connectors, journaling and transport settings all need to move deliberately. So do the small things that generate support calls afterward: mobile device reconfiguration, Outlook profile rebuilds, autodiscover records, cached address book entries pointing at old addresses, and the delegate permissions that silently do not carry over. We work through a checklist rather than a memory, and we keep the old environment intact until the new one has been proven for a couple of weeks.
After the move we complete the security work that on-premises Exchange made awkward: MFA, conditional access, modern authentication and proper filtering. Those details live on our business email page, our Microsoft 365 page and at email.orcait.io. The wider migration method is on data migration.
We do not decommission on-premises Exchange the day after cutover. It stays available, in a controlled state, until the new environment has run clean for a couple of weeks.
Migration Checklist
Every one of these has caused a migration incident for somebody.
Copiers, accounting software, alarm systems and line-of-business apps that relay through your server. Missing one means mail silently stops.
Measure size and actual usage. Migrate what matters, retire what does not, and consider SharePoint or shared mailboxes where they fit better.
Full access, send-as, send-on-behalf and calendar delegation do not always carry cleanly. They get documented before and verified after.
Transport rules, connectors, disclaimers and journaling recreated in Exchange Online and tested with real messages, not assumed.
Outlook profiles, autodiscover, mobile devices and cached address entries all need attention, and this is where most user tickets come from.
DNS TTLs lowered in advance, the old environment left intact, and a documented path back if something material goes wrong.
How It Works
Full inventory of mailboxes, sizes, public folders, permissions, mail flow rules and every system that relays through the server.
Tenant configured, domains verified, licenses assigned, DNS TTLs lowered and a synchronization of mailbox data started in the background.
Final delta sync, DNS change, client reconfiguration and mail flow verification, done in a weekend window with the team on hand.
Two weeks of close support for profile issues and edge cases, then decommission of the old server once everything is proven.
The morning after a cutover is when the questions arrive. Somebody who knows the migration is there to answer them.
For the large majority of small and mid-size businesses, no. The security exposure of an internet-facing mail server, the cumulative update burden and the certificate management overhead outweigh the control you gain. The exceptions are usually specific regulatory or application requirements, and they are rarer than people expect.
That is the whole point of the plan. Mailbox data is synchronized in the background before cutover, mail flow is switched with lowered DNS TTLs so propagation is quick, and anything arriving during the transition is queued and delivered rather than lost. We verify delivery in both directions before calling it done.
Hybrid connects your on-premises Exchange to Exchange Online so mailboxes in both places share calendars, address lists and mail flow. It allows migration in batches rather than one weekend, which suits larger environments. It adds complexity, so we recommend it based on size and risk tolerance rather than by default.
We audit them for size and real usage first. Content that is genuinely active gets migrated to Exchange Online public folders, shared mailboxes or SharePoint depending on what it is being used for. Hierarchy nobody has touched in years gets archived rather than carried forward.
For a small business of twenty to fifty mailboxes, typically two to three weeks total: about a week of discovery and preparation, background synchronization, a weekend cutover and then a settling period. Larger or hybrid migrations run longer and proceed in batches.
Usually yes, in some form. Modern Outlook versions can often rebuild the profile automatically once autodiscover points to the new tenant, but cached entries, delegate access and mobile devices commonly need a hand. We plan for touching every workstation rather than hoping we will not need to.
That is exactly the thing we look for during discovery, by monitoring what actually relays through the existing server. Each system is reconfigured to authenticate against Exchange Online or routed through an approved connector, and we test each one with a live message before cutover.
Yes. We patch cumulative updates in sequence, manage certificates before they expire, monitor database and log growth, keep backups application-aware and watch for the advisories that matter. Plenty of clients stay on-premises for a year while planning the move properly.
Discovery, a fixed-price plan and a cutover that accounts for everything.
Talk to Your Pod
We will review your version, patch state, mailbox count, public folder usage and connected systems, then give you a migration plan with a timeline and a fixed price.
(602) 677-0779Family owned in Gilbert, AZ since 2015 · onsite across the Phoenix metro · remote support nationwide · never outsourced
A few details and your pod gets right back to you, usually the same business day.